Step-by-step guide
Last updated: August 2026
Have these ready — it's what onboarding stalls on:
Grant the minimum the work needs. On Google Analytics (GA4), the levels are:
| Access level / role | What it can do |
|---|---|
| Viewer | See reports and configurations; no changes. |
| Analyst | Viewer plus create and edit explorations, audiences and comparisons. Common for reporting agencies. |
| Editor | Full control of settings except user management. Common for agencies building the setup. |
| Administrator | Everything including managing users. Grant sparingly. |
1–2 minutes. Add the user and choose a role; access is immediate — no acceptance step needed on their side.
Open Admin → Property → Property access management and grant the access — a few minutes.
Accept and confirm from their side, then start work.
Access is granted when:
The most common problems and how to fix them:
Account-level access grants every property in the account — usually too much. Remove it and re-add at the specific property under Property access management.
You need the Administrator role. Ask the current admin to grant it or to add the agency.
Check they were added to the right property (GA4 accounts can contain several) and that data collection is active.
You add the agency by their own Google email — never your password. Access is scoped to the property and role you choose and is removable instantly. The agency logs in with their own Google account and 2FA.
Everything above is why agencies switch to a single link. HandItSafe requests exactly this Google Analytics (GA4) access for you — the client approves through Google Analytics (GA4)'s official process in about three minutes, no password shared, and keeps a panel to remove it anytime. When the engagement ends, removing access is one tap with a full log.
FAQ
No. You add them as a user by their own Google email. They log in with their account, never yours.
Analyst or Editor is usually enough to build reports and explorations. Administrator is only needed to manage other users.
Yes, instantly from Property access management. HandItSafe surfaces this in the client's panel too.
Property. Account-level access exposes every property under the account. Grant at the specific property the agency needs.
Analyst is usually enough — it lets them build explorations and audiences without changing your setup.
HandItSafe requests exactly this access in one link. No passwords. Your client keeps a panel to remove it anytime.